SEC cyber risk management rule—a security and compliance opportunity

Credit to Author: Christine Barrett| Date: Wed, 01 Mar 2023 17:00:00 +0000

The proposed Securities and Exchange Commission rule creates new reporting obligations for United States publicly traded companies to disclose cybersecurity incidents, risk management, policies, and governance. This blog describes how the rule is an opportunity for the IT security team to provide value to the company.

The post SEC cyber risk management rule—a security and compliance opportunity appeared first on Microsoft Security Blog.

Read more

EU parliamentary committee says 'no' to EU-US data privacy framework

The European Parliament’s Committee on Civil Liberties, Justice and Home Affairs has recommended that the European Commission reject the proposed EU-US Data Privacy Framework, which would govern the way in which the personal information of EU citizens is handled by US companies.

The committee’s decision — formally, a draft motion for a resolution— represents a rejection of the European Commission’s recommendation, announced in December, that the data privacy framework should be adopted. The recommendation stated that US law now offers an “adequate” level of protection for the personal data of EU users of US companies’ services.

To read this article in full, please click here

Read more

European Commission takes step toward approving EU-US data privacy pact

The European Commission announced Tuesday that is has officially begun the process of approving the EU-US Data Privacy Framework—hammered together to allow the flow of data between the US and the European Union—after concluding that the framework provides privacy safeguards comparable to those of the EU.

After President Biden signed the executive order that implemented rules for the Trans-Atlantic Data Policy Framework in the US in October, the Commission conducted an assessment into the US legal framework that the bill was based upon. That assessment, released Tuesday, says that the legislation ensures an adequate level of protection for personal data transferred from the EU to US companies.

To read this article in full, please click here

Read more

4 things to look for in a multicloud data protection solution

Credit to Author: Emma Jones| Date: Tue, 13 Dec 2022 17:00:00 +0000

Learn four must-haves for multicloud data protection, including how an integrated solution provides greater scalability and protection across your multicloud and hybrid environment.

The post 4 things to look for in a multicloud data protection solution appeared first on Microsoft Security Blog.

Read more

How Microsoft Purview and Priva help simplify data protection

Credit to Author: Christine Barrett| Date: Tue, 18 Oct 2022 16:00:00 +0000

Learn how Microsoft Purview and Microsoft Priva can help simplify data governance across your enterprise using the tools you already have—today.

The post How Microsoft Purview and Priva help simplify data protection appeared first on Microsoft Security Blog.

Read more

Microsoft publishes new report on holistic insider risk management

Credit to Author: Christine Barrett| Date: Thu, 06 Oct 2022 16:00:00 +0000

The risk landscape for organizations has changed significantly in the past few years. Traditional ways of identifying and mitigating risks simply don’t work. Historically, organizations have focused on external threats; however, risks from within the organization can be just as prevalent and harmful. This new Microsoft-commissioned report lays out several new insights about how organizations go from a fragmented approach to insider risk management to a holistic one.

The post Microsoft publishes new report on holistic insider risk management appeared first on Microsoft Security Blog.

Read more

Data governance: 5 tips for holistic data protection

Credit to Author: Christine Barrett| Date: Wed, 24 Aug 2022 16:00:00 +0000

Proactive data governance offers a holistic approach that conserves resources and simplifies the protection of your data assets. Microsoft Purview provides a comprehensive data governance solution designed to help manage your on-premises, multicloud, and software as a service (SaaS) data. Here are five ways it can help.

The post Data governance: 5 tips for holistic data protection appeared first on Microsoft Security Blog.

Read more

IT security: An opportunity to raise corporate governance scores

Credit to Author: Christine Barrett| Date: Mon, 08 Aug 2022 16:00:00 +0000

Corporate Governance scoring is increasingly important to boards of directors, executive leadership, and the investment community. Governance frameworks now incorporate aspects of IT security. Communicating the security message in ways that impact a company’s governance score is important to getting attention and investment from corporate leadership. This post examines a leading governance framework from Institutional Shareholder Services, Governance QualityScore, and the specifics of how IT security can increase a company’s score.

The post IT security: An opportunity to raise corporate governance scores appeared first on Microsoft Security Blog.

Read more

Discover 5 lessons Microsoft has learned about compliance management

Credit to Author: Christine Barrett| Date: Mon, 25 Jul 2022 16:00:00 +0000

Just like our customers, Microsoft has been on a compliance journey. Here’s what we’ve learned about the most effective mindset and tools to manage compliance.

The post Discover 5 lessons Microsoft has learned about compliance management appeared first on Microsoft Security Blog.

Read more